vexctl

CLI tool to create, transform and attest VEX metadata

vexctl is a CLI tool to create, apply, and attest VEX (Vulnerability Exploitability eXchange) data. Its purpose is to help with the creation and management of VEX documents that allow "turning off" security scanner alerts of vulnerabilities known not to affect a product. VEX can be thought of as a "negative security advisory". Using VEX, software authors can communicate to their users that an otherwise vulnerable component has no security implications for their product.

There is no official package available for openSUSE Leap 16.0

Distributions

openSUSE Tumbleweed

0.4.1+git96.558125d

openSUSE Leap 16.0

openSUSE Leap 15.6

openSUSE Leap 15.5

openSUSE Factory RISCV

SLFO Main

Unsupported distributions

The following distributions are not officially supported. Use these packages at your own risk.

openSUSE:Tumbleweed

SUSE:SLE-15:GA